Security News

300 Servers and €3.5M Seized as Europol Strikes Ransomware Networks Worldwide
2025-05-23 10:45

As part of the latest "season" of Operation Endgame, a coalition of law enforcement agencies have taken down about 300 servers worldwide, neutralized 650 domains, and issued arrest warrants...

Police takes down 300 servers in ransomware supply-chain crackdown
2025-05-23 06:58

In the latest phase of Operation Endgame, an international law enforcement operation, national authorities from seven countries seized 300 servers and 650 domains used to launch ransomware attacks. [...]

Unpatched Windows Server vulnerability allows full domain compromise
2025-05-22 15:34

A privilege escalation vulnerability in Windows Server 2025 can be used by attackers to compromise any user in Active Directory (AD), including Domain Admins. “The [“BadSuccessor”] attack exploits...

Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise
2025-05-22 12:35

A privilege escalation flaw has been demonstrated in Windows Server 2025 that makes it possible for attackers to compromise any user in Active Directory (AD). "The attack exploits the delegated...

Russia's Fancy Bear swipes a paw at logistics, transport orgs' email servers
2025-05-21 19:16

Their connection? Aiding Ukraine, duh Russian cyberspies have targeted "dozens" of Western and NATO-country logistics providers, tech companies, and government orgs providing transport and foreign...

Samsung patches MagicINFO 9 Server vulnerability exploited by attackers
2025-05-15 11:15

Companies running Samsung MagicINFO, a platform for managing content on Samsung commercial digital displays, should upgrade to the latest available version of its v9 branch to fix a vulnerability...

Russia-Linked APT28 Exploited MDaemon Zero-Day to Hack Government Webmail Servers
2025-05-15 10:05

A Russia-linked threat actor has been attributed to a cyber espionage operation targeting webmail servers such as Roundcube, Horde, MDaemon, and Zimbra via cross-site scripting (XSS)...

Russia-linked hackers target webmail servers in Ukraine-related espionage operation
2025-05-15 09:00

ESET researchers have uncovered RoundPress, a Russia-aligned espionage operation targeting webmail servers via XSS vulnerabilities. Behind it is most likely the Russia-aligned Sednit (also known...

Microsoft Fixes 78 Flaws, 5 Zero-Days Exploited; CVSS 10 Bug Impacts Azure DevOps Server
2025-05-14 08:14

Microsoft on Tuesday shipped fixes to address a total of 78 security flaws across its software lineup, including a set of five zero-days that have come under active exploitation in the wild. Of...

Türkiye Hackers Exploited Output Messenger Zero-Day to Drop Golang Backdoors on Kurdish Servers
2025-05-13 05:08

A Türkiye-affiliated threat actor exploited a zero-day security flaw in an Indian enterprise communication platform called Output Messenger as part of a cyber espionage attack campaign since April...